CVE-2018-19913: Domainmod
Medium severity, CVSS 4.8. EPSS: 1.8% chance of exploitation in the next 30 days.
DomainMOD through 4.11.01 has XSS via the assets/add/registrar-accounts.php UserName, Reseller ID, or notes field.
Affected products
- Domainmod Domainmod: from 4.09.03, up to and including 4.11.01
Published 2018-12-06. Last modified 2026-06-17.